GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,753
Erlang
35
GitHub Actions
29
Go
2,326
Maven
5,000+
npm
3,957
NuGet
712
pip
3,741
Pub
12
RubyGems
921
Rust
973
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
10,609 advisories
Filter by severity
ColdFusion ClusterCATS appends stale query string arguments to a URL during HTML redirection,...
Low
Unreviewed
CVE-2000-0382
was published
Apr 30, 2022
The Netopia R9100 router does not prevent authenticated users from modifying SNMP tables, even if...
Low
Unreviewed
CVE-2000-0379
was published
Apr 30, 2022
dump in Debian GNU/Linux 2.1 does not properly restore symlinks, which allows a local user to...
Low
Unreviewed
CVE-2000-0366
was published
Apr 30, 2022
The kernel in FreeBSD 3.2 follows symbolic links when it creates core dump files, which allows...
Low
Unreviewed
CVE-2000-0375
was published
Apr 30, 2022
Classic Cisco IOS 9.1 and later allows attackers with access to the login prompt to obtain...
Low
Unreviewed
CVE-2000-0368
was published
Apr 30, 2022
The PPP wvdial.lxdialog script in wvdial 1.4 and earlier creates a .config file with world...
Low
Unreviewed
CVE-2000-0361
was published
Apr 30, 2022
The on-line help system options in Cisco routers allows non-privileged users without "enabled"...
Low
Unreviewed
CVE-2000-0345
was published
Apr 30, 2022
The Allaire Spectra container editor preview tool does not properly enforce object security,...
Low
Unreviewed
CVE-2000-0334
was published
Apr 30, 2022
The i386 trace-trap handling in OpenBSD 2.4 with DDB enabled allows a local user to cause a...
Low
Unreviewed
CVE-2000-0309
was published
Apr 30, 2022
The Windows 2000 domain controller allows a malicious user to modify Active Directory information...
Low
Unreviewed
CVE-2000-0311
was published
Apr 30, 2022
aaa_base in SuSE Linux 6.3, and cron.daily in earlier versions, allow local users to delete...
Low
Unreviewed
CVE-2000-0293
was published
Apr 30, 2022
X fontserver xfs allows local users to cause a denial of service via malformed input to the server.
Low
Unreviewed
CVE-2000-0286
was published
Apr 30, 2022
Emacs 20 does not properly set permissions for a slave PTY device when starting a new subprocess,...
Low
Unreviewed
CVE-2000-0269
was published
Apr 30, 2022
Buffer overflow in the Napster client beta 5 allows remote attackers to cause a denial of service...
Low
Unreviewed
CVE-2000-0281
was published
Apr 30, 2022
Buffer overflow in the RealNetworks RealPlayer client versions 6 and 7 allows remote attackers to...
Low
Unreviewed
CVE-2000-0280
was published
Apr 30, 2022
CRYPTOCard CryptoAdmin for PalmOS uses weak encryption to store a user's PIN number, which allows...
Low
Unreviewed
CVE-2000-0275
was published
Apr 30, 2022
The make-temp-name Lisp function in Emacs 20 creates temporary files with predictable names,...
Low
Unreviewed
CVE-2000-0270
was published
Apr 30, 2022
BeOS 4.5 and 5.0 allow local users to cause a denial of service via malformed direct system calls...
Low
Unreviewed
CVE-2000-0276
was published
Apr 30, 2022
The Linux trustees kernel patch allows attackers to cause a denial of service by accessing a file...
Low
Unreviewed
CVE-2000-0274
was published
Apr 30, 2022
Internet Explorer 5.01 allows remote attackers to bypass the cross frame security policy via a...
Low
Unreviewed
CVE-2000-0266
was published
Apr 30, 2022
Panda Security 3.0 with registry editing disabled allows users to edit the registry and gain...
Low
Unreviewed
CVE-2000-0264
was published
Apr 30, 2022
The X font server xfs in Red Hat Linux 6.x allows an attacker to cause a denial of service via a...
Low
Unreviewed
CVE-2000-0263
was published
Apr 30, 2022
The Linux 2.2.x kernel does not restrict the number of Unix domain sockets as defined by the...
Low
Unreviewed
CVE-2000-0227
was published
Apr 30, 2022
Microsoft TCP/IP Printing Services, aka Print Services for Unix, allows an attacker to cause a...
Low
Unreviewed
CVE-2000-0232
was published
Apr 30, 2022
ARCserve agent in SCO UnixWare 7.x allows local attackers to gain root privileges via a symlink...
Low
Unreviewed
CVE-2000-0224
was published
Apr 30, 2022
ProTip!
Advisories are also available from the
GraphQL API